JOURNAL ARTICLE

Anomaly-based Intrusion Detection using Tree Augmented Naive Bayes

Abstract

Information technology is continuously becoming a more central part of society and together with the increased connectivity and inter-dependency of devices, it is becoming more important to keep systems secure. Most modern enterprises use some form of intrusion detection in order to detect hostile cyber activity that enters the organization. One of the major challenges of intrusion detection in computer networks is to detect types of intrusions that have previously not been encountered. These unknown intrusions are generally detected by methods collectively called anomaly detection. It is nowadays popular to use various artificial intelligence schemes to enhance anomaly detection of network traffic, and many state-of-the-art models reach a detection rate of well over 99%. One such promising algorithm is the Tree Augmented Naive Bayes (TAN) Classifier. However, it is crucial to implement TAN correctly in order to benefit from its full performance. This study implements a TAN classifier for anomaly based intrusion detection of computer network traffic, and displays practical insights on how to maximize its performance. The algorithm is implemented in two data sets with data from simulated cyber attacks: NSL-KDD and UNSW-NB15. We contribute to the field by validating the usefulness of TAN for anomaly detection in computer networks, as well as providing practical insights to new practitioners who want to utilize TAN in intrusion detection systems.

Keywords:
Intrusion detection system Naive Bayes classifier Computer science Anomaly detection Data mining Decision tree Anomaly (physics) Artificial intelligence Tree (set theory) Machine learning Mathematics Support vector machine

Metrics

11
Cited By
1.49
FWCI (Field Weighted Citation Impact)
38
Refs
0.83
Citation Normalized Percentile
Is in top 1%
Is in top 10%

Citation History

Topics

Network Security and Intrusion Detection
Physical Sciences →  Computer Science →  Computer Networks and Communications
Advanced Malware Detection Techniques
Physical Sciences →  Computer Science →  Signal Processing
Internet Traffic Analysis and Secure E-voting
Physical Sciences →  Computer Science →  Artificial Intelligence

Related Documents

JOURNAL ARTICLE

Students' learning style detection using tree augmented naive Bayes

Ling Xiao LiSiti Soraya Abdul Rahman

Journal:   Royal Society Open Science Year: 2018 Vol: 5 (7)Pages: 172108-172108
BOOK-CHAPTER

Tree Augmented Naive Bayes

Fei ZhengGeoffrey I. Webb

Encyclopedia of Machine Learning Year: 2010 Pages: 990-991
BOOK-CHAPTER

Tree Augmented Naive Bayes

Fei ZhengGeoffrey I. Webb

Encyclopedia of Machine Learning and Data Mining Year: 2017 Pages: 1283-1284
JOURNAL ARTICLE

Tree-augmented naive Bayes ensembles

S. MaHongbo Shi

Year: 2005 Vol: 4 Pages: 1497-1502
© 2026 ScienceGate Book Chapters — All rights reserved.